HP ProCurve Threat Management Solution Implementation Guide 2009-05
3-58
HP ProCurve Network Immunity Manager with a Third-Party IDS/IPS
Step 2: Detect Threats
b. Find the event in the sensor’s event log:
i. Click Monitoring in the toolbar.
ii. In the left navigation bar, click Events.
Select options to view the events in which you are interested.
Figure 3-57. Setting Parameters for the Events List
iii. Click View to see the event list. Depending on the options you have selected, the
event list will display a variety of detected events. You might find the Event ID useful
for correlating events on the sensor with events received by PCM+ on the man-
agement station.
To locate an event in the event list, note the time that you started the network scan
and then look for an appropriate event around that time.
iv. Note the Event ID of the event.
c. Verify that PCM+ sees the events. The event log in PCM+ shows events from the sensor
that are forwarded to the management station as SNMP traps.
i. Return to the PCM+ management interface.
ii. In the navigation tree, select the device or group where you expect the sensor
events to be logged.